Usually viruses I come across are a breeze, run a scanner delete processes and they go away, never had to reformat... I thought I'd ask around before I end up formatting ALL of my hard drives and start over. Recently I've been getting a few very serious symptoms on my machine running XP S2:
Symptoms:
1) Majority of executables have bytes appended to them, i.e.
a) download via firefox, executables become larger after downloaded
b) download via bittorrent, executables become corrupt mid-download, file size larger than normal
c) extract an executable, file size becomes larger than normal, usually by ~7168 bytes
d) change .exe to something else in archive, extract, file size is the same, rename to exe, file size increases
2) DEP comes up for way too many programs, including Microsoft ones
a) when I login, userinit is prevented by DEP, I ctrl-alt-delete, task manager is prevented by DEP
b) I have to leave the DEP warning window open and eventually get task manager to run, then run explorer multiple times all the while DEP is spamming me with warnings
c) I end task for dumpprep and the warning window, it eventually goes away, Windows behaves normally after
Tried:
1) Failed System Restore
2) ComboFix, nothing
3) HiJackThis, I eliminated all the suspicious processes, I get the eerie feeling that whatever this is attached itself to known processes
4) Complete in-depth scan of all HDs with ESET NOD32 on the latest virus DB, found nothing
5) Chkdsk did nothing
You know, at first I thought whatever this was was neat, now it's just freaking me out. Any ideas?
Symptoms:
1) Majority of executables have bytes appended to them, i.e.
a) download via firefox, executables become larger after downloaded
b) download via bittorrent, executables become corrupt mid-download, file size larger than normal
c) extract an executable, file size becomes larger than normal, usually by ~7168 bytes
d) change .exe to something else in archive, extract, file size is the same, rename to exe, file size increases
2) DEP comes up for way too many programs, including Microsoft ones
a) when I login, userinit is prevented by DEP, I ctrl-alt-delete, task manager is prevented by DEP
b) I have to leave the DEP warning window open and eventually get task manager to run, then run explorer multiple times all the while DEP is spamming me with warnings
c) I end task for dumpprep and the warning window, it eventually goes away, Windows behaves normally after
Tried:
1) Failed System Restore
2) ComboFix, nothing
3) HiJackThis, I eliminated all the suspicious processes, I get the eerie feeling that whatever this is attached itself to known processes
4) Complete in-depth scan of all HDs with ESET NOD32 on the latest virus DB, found nothing
5) Chkdsk did nothing
You know, at first I thought whatever this was was neat, now it's just freaking me out. Any ideas?